AD user object across different forest

HI All,We have Forest A and Forest BForest A is the root forestMy requirement:Need to add a user object from Forest A into AD group(Universal) in Forest BIn Forest B from ADUC console I'm not able to find AD objects resources in Forest A.Is there any permission kind(Domain admins, Enterprise admins).Please guide me on how to achieve thisRegards,Yogesh

Try with domain local group.BiswajitOn 24-Jun-2017 4:30 PM, "Yogesh cittu" <yogeshcittu@xxxxxxxxxxxxxxxx> wrote:HI All,We have Forest A and Forest BForest A is the root forestMy requirement:Need to add a user object from Forest A into AD group(Universal) in Forest BIn Forest B from ADUC console I'm not able to find AD objects resources in Forest A.Is there any permission kind(Domain admins, Enterprise admins).Please guide me on how to achieve thisRegards,Yogesh

A universal group can only contain member objects from the same AD forest as the universal group itself You could convert the group to a domain local group. All the existing members of the universal group can also be a member of the domain local group. However a universal group can be used anywhere the in the forest to secure something, where a domain local group can only secure resources in its own domain Met vriendelijke groeten / Kind regards, Jorge de Almeida PintoMVP Enterprise Mobility And Security | MCP/MCSE/MCITPMVP Profile | Blog | Facebook | Twitter

Sent: 24 June 2017 11:54To: ActiveDir@xxxxxxxxxxxxxxxxSubject: [ActiveDir] AD user object across different forest HI All, We have Forest A and Forest B Forest A is the root forest My requirement: Need to add a user object from Forest A into AD group(Universal) in Forest B In Forest B from ADUC console I'm not able to find AD objects resources in Forest A. Is there any permission kind(Domain admins, Enterprise admins).Please guide me on how to achieve this Regards,Yogesh